Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerabilities

Tracked app vulnerabilities

11,279 CVEs affect a tracked app or OS (High, all platforms). 229 of them are in the CISA KEV catalog, meaning exploitation is confirmed.

Matching CVEs
11,279
Actively exploited
229
Publication window
2010-07-30 → 2026-08-19

Chronological sort: newest to oldest. Use the KEV / severity filters above to prioritize.

11,279 entries High Hide N/A Clear all
CVE
CVE-2024-38029
HIGH 7.5

Microsoft OpenSSH for Windows Remote Code Execution Vulnerability

CVE-2024-37983
HIGH 6.7

Windows Resume Extensible Firmware Interface Security Feature Bypass Vulnerability

CVE-2024-37982
HIGH 6.7

Windows Resume Extensible Firmware Interface Security Feature Bypass Vulnerability

CVE-2024-37979
HIGH 6.7

Windows Kernel Elevation of Privilege Vulnerability

CVE-2024-37976
HIGH 6.7

Windows Resume Extensible Firmware Interface Security Feature Bypass Vulnerability

CVE-2024-30092
HIGH 8.0

Windows Hyper-V Remote Code Execution Vulnerability

CVE-2024-20659
HIGH 7.1

Windows Hyper-V Security Feature Bypass Vulnerability

CVE-2024-44193
HIGH 7.8 1 app

A logic issue was addressed with improved restrictions. This issue is fixed in iTunes 12.13.3 for Windows. A local attacker may be able to elevate their privil…

CVE-2024-9403
HIGH 7.3 1 app

Memory safety bugs present in Firefox 130. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could h…

CVE-2024-9400
HIGH 8.8 1 app

A potential memory corruption vulnerability could be triggered if an attacker had the ability to trigger an OOM at a specific moment during JIT compilation. Th…

CVE-2024-9399
HIGH 7.5 1 app

A website configured to initiate a specially crafted WebTransport session could crash the Firefox process leading to a denial of service condition. This vulner…

CVE-2024-9396
HIGH 8.8 1 app

It is currently unknown if this issue is exploitable but a condition may arise where the structured clone of certain objects could lead to memory corruption. T…

CVE-2024-9394
HIGH 7.5 1 app

An attacker could, via a specially crafted multipart response, execute arbitrary JavaScript under the `resource://devtools` origin. This could allow them to a…

CVE-2024-9393
HIGH 7.5 1 app

An attacker could, via a specially crafted multipart response, execute arbitrary JavaScript under the `resource://pdf.js` origin. This could allow them to acc…

CVE-2024-40677
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-40676
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-40675
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-40674
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-40673
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-40672
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-40670
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-40669
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-40651
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-40649
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-38399
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-34748
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-34733
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-34732
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-33069
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-33049
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-23369
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-20103
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-20101
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-20100
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-20094
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-20093
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-20092
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-20091
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-20090
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-0044
HIGH

Indexed via Android Security Bulletin; full NVD metadata pending.

CVE-2024-46852
HIGH 7.8

In the Linux kernel, the following vulnerability has been resolved: dma-buf: heaps: Fix off-by-one in CMA heap fault handler Until VM_DONTEXPAND was added in…

CVE-2024-44189
HIGH 7.5

The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15. A logic issue existed where a process may be able to capture screen cont…

CVE-2024-44165
HIGH 7.5

A logic issue was addressed with improved checks. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, macOS Sequoia 15, macOS Sonoma 14.7, m…

CVE-2024-44164
HIGH 7.1

This issue was addressed with improved checks. This issue is fixed in iOS 17.7 and iPadOS 17.7, macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7. An app…

CVE-2024-44162
HIGH 7.8 1 app

This issue was addressed by enabling hardened runtime. This issue is fixed in Xcode 16. A malicious application may gain access to a user's Keychain items.

CVE-2024-44152
HIGH 7.5

A privacy issue was addressed with improved private data redaction for log entries. This issue is fixed in macOS Sequoia 15. An app may be able to access user-…

CVE-2024-44149
HIGH 7.5

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15. An app may be able to access protected user data.

CVE-2024-44132
HIGH 8.8

This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sequoia 15. An app may be able to break out of its sandbox.

CVE-2024-40861
HIGH 7.8

The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15. An app may be able to gain root privileges.

CVE-2024-40856
HIGH 7.5

An integrity issue was addressed with Beacon Protection. This issue is fixed in iOS 18 and iPadOS 18, macOS Sequoia 15, tvOS 18. An attacker may be able to for…